A vulnerability affecting IBMs WebSphere has been reported by security researcher Maurizio Agazzini. The vulnerability affects WebSphere versions 7, 8, 8.5, and 9, by allowing remote authenticated users to execute arbitrary Java code via a crafted serialized object The vulnerability could lead to DoS (denial-of-service) attacks and even remote execution of malicious code. IBM asked for details of the PoC to be redacted to protect vulnerable users and allow them time to patch.”]

